Shai-Hulud Supply Chain Attacks Compromise Over 100 NPM and PyPI Packages
Rapid Read

Shai-Hulud Supply Chain Attacks Compromise Over 100 NPM and PyPI Packages

What's Happening? A new wave of Shai-Hulud supply chain attacks has compromised over 100 packages in the NPM and PyPI ecosystems. The attacks, which began in September 2025, have intensified recently, with hackers using a self-replicating worm to target open source software communities. The hacking
AI Generated
This may include content generated using AI tools. Glance teams are making active and commercially reasonable efforts to moderate all AI generated content. Glance moderation processes are improving however our processes are carried out on a best-effort basis and may not be exhaustive in nature. Glance encourage our users to consume the content judiciously and rely on their own research for accuracy of facts. Glance maintains that all AI generated content here is for entertainment purposes only.